Skip to main content
ImplementedNIS2

NIS2 in Latvia

Latvia implemented NIS2 through the Nacionālās kiberdrošības likums. Coordination is handled jointly by the NCSC-LV and CERT.LV.

Transposition law
Nacionālās kiberdrošības likums (National Cybersecurity Law)
In force
1 September 2024
Competent authority
National Cybersecurity Centre (NCSC-LV) / CERT.LV
Max fine (Essential)
€10 million or 2% of global annual turnover
Max fine (Important)
€7 million or 1.4% of global annual turnover
Full enforcement
October 2024

Key Deadlines

Law in force
1 September 2024

Competent Authority

National Cybersecurity Centre (NCSC-LV) / CERT.LV
Supervisory coordination and active security incident response
https://www.mod.gov.lv

Latvia utilizes military-grade expertise through the Ministry of Defence to support infrastructure posture and enforce critical updates.

Registration Process

Provide core operational data via the Latvian e-government interfaces designated by the Ministry of Defence.

📊 Quick Test

Find out if your company is in scope

Does your organisation fall under Annex I (Essential) or Annex II (Important) entities?

Check NIS2 Scope →

Key Requirements

  • 1Detailed security logs retention and threat posture reporting
  • 2Vulnerability scanning validation from CERT.LV
  • 3Incident declarations submitted within 24 hours

National Additions

Latvia requires state-linked critical infrastructure to prioritize localized sovereign cloud hosting networks

FAQ: NIS2 in Latvia

What role does CERT.LV play?
CERT.LV acts as the lead technical authority, analyzing threats and receiving security incident reports.

Ready to assess your NIS2 compliance?

Use our free tools to check your NIS2 scope and run a gap assessment.